And here is the key.
Core ALLOWED the spam that currently abuses Bitcoin by not fixing it with Luke's PR. So Citrea abusing Bitcoin is direct effect of malicious Core devs actions.
"The datacarriersize policy option is meant to limit the size of extra data allowed in transactions for relaying and mining. Since the end of 2022, however, attackers have found a way to bypass this limit by obfuscating their spam inside OP_FALSE OP_IF patterns instead of using the standardized OP_RETURN. This remains under active exploitation to a degree very harmful to Bitcoin even today.
A straightforward way to address this is to simply fix the bug (#28408), but that was (inappropriately) closed due to social attacks."

https://github.com/bitcoin/bitcoin/pull/28408